Javascript must be enabled to continue!
SGAN-IDS: Self-Attention-Based Generative Adversarial Network against Intrusion Detection Systems
View through CrossRef
In cybersecurity, a network intrusion detection system (NIDS) is a critical component in networks. It monitors network traffic and flags suspicious activities. To effectively detect malicious traffic, several detection techniques, including machine learning-based NIDSs (ML-NIDSs), have been proposed and implemented. However, in much of the existing ML-NIDS research, the experimental settings do not accurately reflect real-world scenarios where new attacks are constantly emerging. Thus, the robustness of intrusion detection systems against zero-day and adversarial attacks is a crucial area that requires further investigation. In this paper, we introduce and develop a framework named SGAN-IDS. This framework constructs adversarial attack flows designed to evade detection by five BlackBox ML-based IDSs. SGAN-IDS employs generative adversarial networks and self-attention mechanisms to generate synthetic adversarial attack flows that are resilient to detection. Our evaluation results demonstrate that SGAN-IDS has successfully constructed adversarial flows for various attack types, reducing the detection rate of all five IDSs by an average of 15.93%. These findings underscore the robustness and broad applicability of the proposed model.
Title: SGAN-IDS: Self-Attention-Based Generative Adversarial Network against Intrusion Detection Systems
Description:
In cybersecurity, a network intrusion detection system (NIDS) is a critical component in networks.
It monitors network traffic and flags suspicious activities.
To effectively detect malicious traffic, several detection techniques, including machine learning-based NIDSs (ML-NIDSs), have been proposed and implemented.
However, in much of the existing ML-NIDS research, the experimental settings do not accurately reflect real-world scenarios where new attacks are constantly emerging.
Thus, the robustness of intrusion detection systems against zero-day and adversarial attacks is a crucial area that requires further investigation.
In this paper, we introduce and develop a framework named SGAN-IDS.
This framework constructs adversarial attack flows designed to evade detection by five BlackBox ML-based IDSs.
SGAN-IDS employs generative adversarial networks and self-attention mechanisms to generate synthetic adversarial attack flows that are resilient to detection.
Our evaluation results demonstrate that SGAN-IDS has successfully constructed adversarial flows for various attack types, reducing the detection rate of all five IDSs by an average of 15.
93%.
These findings underscore the robustness and broad applicability of the proposed model.
Related Results
Mobile Agent (MA) Based Intrusion Detection Systems (IDS): A Systematic Review
Mobile Agent (MA) Based Intrusion Detection Systems (IDS): A Systematic Review
An Intrusion Detection System (IDS) identifies the attacks by analysing the events, considered undesirable from a security perspective, in systems and networks. It is necessary for...
Detection of Malicious Flows in the Software-Defined Networks by Using Statistical Flow Analysis-Based Intrusion Detection System
Detection of Malicious Flows in the Software-Defined Networks by Using Statistical Flow Analysis-Based Intrusion Detection System
Abstract
Specifically, in the past few years, internet traffic has grown rapidly, evolving modern network technologies with hybrid telecommunication systems and conventiona...
An enhanced ensemble defense framework for boosting adversarial robustness of intrusion detection systems
An enhanced ensemble defense framework for boosting adversarial robustness of intrusion detection systems
Abstract
Machine learning (ML) and deep neural networks (DNN) have emerged as powerful tools for enhancing intrusion detection systems (IDS) in cybersecurity. However, re...
FRC‐SGAN based anomaly event recognition for computer night vision in edge and cloud environment
FRC‐SGAN based anomaly event recognition for computer night vision in edge and cloud environment
SummaryAnomaly event recognition and identification has a crucial part in several areas, particularly in night vision environments. Conventional techniques of event recognition are...
ProDef-MDS: A Proactive Defense Mechanism Protecting Malware Detection Systems from Adversarial Attacks
ProDef-MDS: A Proactive Defense Mechanism Protecting Malware Detection Systems from Adversarial Attacks
Malware threatens cybersecurity by enabling data theft, unauthorized access, and extortion. Traditional malware detection systems (MDS) struggle with the increasing volume and comp...
An Efficient Network Intrusion Detection and Classification System using Machine Learning
An Efficient Network Intrusion Detection and Classification System using Machine Learning
In today's digital landscape, network security is of paramount importance, with intrusion detection systems (IDS) playing a crucial role in protecting sensitive data from maliciou...
סודות בין ספריו של מיכאל סגן־כהן
סודות בין ספריו של מיכאל סגן־כהן
This article explores the open book as a pivotal motif in the art of Michael Sgan-Cohen, contending that it serves as a visual interpretation of biblical and kabbalistic themes, re...
Development and application of biological intelligence technology in computer
Development and application of biological intelligence technology in computer
To study the development and application of biological intelligence technology in computers and realize high-precision network anomaly detection, a distributed intrusion detection ...

